Security

The following security related features and functionalities are deprecated in Oracle Linux 10.

ENGINE API in OpenSSL

The Engine API in OpenSSL is deprecated and will be removed in a future major release. No new applications should be built using the Engine API.

Crypto Policies

The allow-rsa-pkcs1-encrypt option is set to false for GnuTLS in all system-wide cryptographic policies (DEFAULT, FUTURE, and FIPS).

HMAC-SHA-1 in FIPS Mode

The HMAC-SHA-1 cryptographic algorithm is deprecated in FIPS mode and may be removed in a future release.